Updated: 10/2/05; 11:38:47 AM

Carrying the Lantern

 Sunday, September 11, 2005

Six Dumb Ideas - Reverse Psychology for Info Security

Bill R.: Click through Bruce's site to the article by Marcus R. Speaking from a personal computer user's perspective, the article is very good. I've heard variations on this before, but he presents the ideas well. May not be practical in some cases, but I think he's on track when he notes we started infosec on PCs by handling the bad guys and the scope has made this approach impractical in many cases today - but we haven't changed our thinking to allowing what's permitted. I wouldn't paint him all wet on this just cause there are nice exceptions. For example, some firewalls by default ask you, the first time an application tries to connect to the internet, whether you want to allow or deny the request - the right way to do it. I'm going to see what it would take to implement his ideas on my iMac. Then try it. Then report back; more later.

Marcus Ranum's "The Six Dumbest Ideas in Computer Security". I don't always agree with everything Marcus says, but he's always interesting and entertaining and thought provoking. This is his latest essay: "The Six Dumbest Ideas in Computer Security."... [Schneier on Security]

- Posted by William A. Riski - 10:13:29 AM - comment []

Emergency Response Needs Attention

Bill R.: Bruce Schneier is a thought leader in security. His blog should be in your news aggregator if you touch the internet in any way and whether you work in the info security business or not. You may not agree with everything he says in this article, but from where I sit in Washington D.C., these lines ring true.

"Katrina was a natural disaster and not a terrorist attack, but that only matters before the event. Large-scale terrorist attacks and natural disasters differ in cause, but they're very similar in aftermath...Katrina demonstrated that we haven't invested enough in emergency response."

Katrina and Security. I had an op ed published in the Minneapolis Star-Tribune today. Toward a Truly Safer Nation Published September 11, 2005 Leaving aside the political posturing and the finger-pointing, how did our nation mishandle Katrina so badly? After spending tens of... [Schneier on Security]

- Posted by William A. Riski - 9:53:40 AM - comment []